4.3
CVSSv2

CVE-2005-0548

Published: 07/03/2005 Updated: 18/10/2016
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Solaris AnswerBook2 Documentation 1.4.4 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the Search function.

Vulnerable Product Search on Vulmon Subscribe to Product

sun solaris answerbook2 1.4.2

sun solaris answerbook2 1.4.3

sun solaris answerbook2 1.4.4

sun solaris answerbook2 1.4

sun solaris answerbook2 1.4.1

sun solaris answerbook2 1.2

sun solaris answerbook2 1.3

Exploits

Sun Solaris AnswerBook2 is reported prone to multiple cross-site scripting vulnerabilities because the software fails to properly sanitize user-supplied data Exploits will allow arbitrary HTML and script code to run in a victim's browser, allowing the attacker to steal cookie-based credentials and launch other attacks The Search function and the ...